cvelist/2024/20xxx/CVE-2024-20004.json

63 lines
2.2 KiB
JSON
Raw Normal View History

2023-11-02 14:00:33 +00:00
{
2024-02-05 06:00:36 +00:00
"data_version": "4.0",
2023-11-02 14:00:33 +00:00
"data_type": "CVE",
"data_format": "MITRE",
"CVE_data_meta": {
"ID": "CVE-2024-20004",
2024-02-05 06:00:36 +00:00
"ASSIGNER": "security@mediatek.com",
"STATE": "PUBLIC"
2023-11-02 14:00:33 +00:00
},
"description": {
"description_data": [
{
"lang": "eng",
2024-02-05 06:00:36 +00:00
"value": "In Modem NL1, there is a possible system crash due to an improper input validation. This could lead to remote denial of service, if NW sent invalid NR RRC Connection Setup message, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01191612; Issue ID: MOLY01195812 (MSV-985)."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Denial of Service"
}
]
}
]
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "MediaTek, Inc.",
"product": {
"product_data": [
{
"product_name": "MT2735, MT6297, MT6833, MT6853, MT6855, MT6873, MT6875, MT6875T, MT6877, MT6880, MT6883, MT6885, MT6889, MT6890, MT6891, MT6893, MT8675, MT8791, MT8791T, MT8797",
"version": {
"version_data": [
{
"version_affected": "=",
"version_value": "Modem NR15"
}
]
}
}
]
}
}
]
}
},
"references": {
"reference_data": [
{
"url": "https://corp.mediatek.com/product-security-bulletin/February-2024",
"refsource": "MISC",
"name": "https://corp.mediatek.com/product-security-bulletin/February-2024"
2023-11-02 14:00:33 +00:00
}
]
}
}